CVE-2026-63294 | Canonical LXD up to 4.0.11/5.0.7/5.21.5/6.9 Symlink backup.yaml symlink
A vulnerability categorized as very critical has been discovered in Canonical LXD up to 4.0.11/5.0.7/5.21.5/6.9. Affected by this issue is some unknown functionality of the file backup.yaml of the component Symlink Handler. Executing a manipulation can lead to symlink following.
This vulnerability is handled as CVE-2026-63294. The attack can be executed remotely. There is not any exploit available.
It is advisable to upgrade the affected component.VulDB Recent EntriesRead More